Hello group,

I would like to avoid the possible potential security risk intoduced 
with the possiblility of flashing foxboard with XP without SDK.
In a perfect world there would be no problem, but what if someone 
else what to get control of my foxboard?

Is any way i could:

a) Avoid flashing foxboard? 
If you know it is a foxboard, you could flash a new fimage and get 
control or just mess it. It's nice that is very hard to brick a 
foxboard (in fact i did every mistake i could do to brick it and i 
always could restore it again) and very easy to flash.
What about a new jumper where only if you could get into the hardware 
you would be allowed to re-flash, not just over the network?
* Note that i want to still be able to flash over ethernet and via 
WEB.
Via web is just a matter of programming with password to enter the 
flash mode area for example.


b) Change the password for root in he SDK
Note that i dont whant to flash a fimage, log into with root and then 
change the password, i would like flash the new fimage with the new 
password, so no one can telnet it and get control, unless you know 
the new password.
Which files should i change it? I know the SALT but i miss where else 
should i change to be able to telnet with the new password.

Any help would be apreciated.

Cheers,
Alexander



Reply via email to